administration_panel vulnerabilities
CVEs whose affected-version data names the administration_panel package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-5696Medium· 5.9Reflected Cross-Site Scripting (XSS) in Microweber
Reflected Cross-Site Scripting (XSS) in Microweber. The vulnerability lies in the ‘group’ parameter of the ‘/admin/settings’ endpoint in the administration panel. A successful exploit allows an attacker to trick an authenticated user int…
▾ SunlitMicroweber · Administration panelvia NVD
CVE-2026-5695High· 8.4Arbitrary file upload vulnerability due to a lack of proper validation in upload forms
Arbitrary file upload vulnerability due to a lack of proper validation in upload forms. This allows authenticated users to upload files to the server without restrictions. An attacker could exploit this flaw to execute malicious code rem…
▾ TwilightMicroweber · Administration panelvia NVD